2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-4947 | — | — | 1.3% | Mar 7, 2017 | Cloudera HUE 3.9.0 and earlier allows remote attackers to enumerate user accounts via a request to desktop/api/users/aut... |
| CVE-2016-4946 | — | — | 0.9% | Mar 7, 2017 | Multiple cross-site scripting (XSS) vulnerabilities in Cloudera HUE 3.9.0 and earlier allow remote attackers to inject a... |
| CVE-2016-9571 | — | — | — | Mar 7, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-9606. Reason: This candidate is a duplicate of... |
| CVE-2016-9164 | — | — | 5.4% | Mar 7, 2017 | Directory traversal vulnerability in diag.jsp file in CA Unified Infrastructure Management (formerly CA Nimsoft Monitor)... |
| CVE-2016-9148 | — | — | 1.8% | Mar 7, 2017 | Cross-site scripting (XSS) vulnerability in CA Service Desk Manager (formerly CA Service Desk) 12.9 and 14.1 allows remo... |
| CVE-2016-7145 | — | — | 0.9% | Mar 7, 2017 | The m_authenticate function in ircd/m_authenticate.c in nefarious2 allows remote attackers to spoof certificate fingerpr... |
| CVE-2016-6244 | — | — | 1.7% | Mar 7, 2017 | The sys_thrsigdivert function in kern/kern_sig.c in the OpenBSD kernel 5.9 allows remote attackers to cause a denial of ... |
| CVE-2016-5315 | — | — | 1.9% | Mar 7, 2017 | The setByteArray function in tif_dir.c in libtiff 4.0.6 and earlier allows remote attackers to cause a denial of service... |
| CVE-2016-10040 | — | — | 1.9% | Mar 7, 2017 | Stack-based buffer overflow in QXmlSimpleReader in Qt 4.8.5 allows remote attackers to cause a denial of service (applic... |
| CVE-2016-10244 | — | — | 3.2% | Mar 6, 2017 | The parse_charstrings function in type1/t1load.c in FreeType 2 before 2.7 does not ensure that a font contains a glyph n... |
| CVE-2016-9649 | — | — | — | Mar 6, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2016-9648 | — | — | — | Mar 6, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2016-9647 | — | — | — | Mar 6, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2016-8236 | — | — | 0.8% | Mar 3, 2017 | Reset to default settings may occur in Lenovo ThinkServer TSM RD350, RD450, RD550, RD650, TD350 during a prolonged broad... |
| CVE-2016-3127 | — | — | 1.4% | Mar 3, 2017 | An information disclosure vulnerability in the logging implementation of BlackBerry Good Control Server versions earlier... |
| CVE-2016-10070 | MEDIUM | 5.5 | 2.1% | Mar 3, 2017 | Heap-based buffer overflow in the CalcMinMax function in coders/mat.c in ImageMagick before 6.9.4-0 allows remote attack... |
| CVE-2016-10066 | MEDIUM | 5.5 | 1.7% | Mar 3, 2017 | Buffer overflow in the ReadVIFFImage function in coders/viff.c in ImageMagick before 6.9.4-5 allows remote attackers to ... |
| CVE-2016-10065 | — | — | 1.9% | Mar 3, 2017 | The ReadVIFFImage function in coders/viff.c in ImageMagick before 7.0.1-0 allows remote attackers to cause a denial of s... |
| CVE-2016-10061 | MEDIUM | 6.5 | 2.9% | Mar 3, 2017 | The ReadGROUP4Image function in coders/tiff.c in ImageMagick before 7.0.1-10 does not check the return value of the fput... |
| CVE-2016-7972 | — | — | 5.2% | Mar 3, 2017 | The check_allocations function in libass/ass_shaper.c in libass before 0.13.4 allows remote attackers to cause a denial ... |
| CVE-2016-7971 | — | — | — | Mar 3, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2016-7970 | — | — | 4.7% | Mar 3, 2017 | Buffer overflow in the calc_coeff function in libass/ass_blur.c in libass before 0.13.4 allows remote attackers to cause... |
| CVE-2016-7969 | HIGH | 7.5 | 4.2% | Mar 3, 2017 | The wrap_lines_smart function in ass_render.c in libass before 0.13.4 allows remote attackers to cause a denial of servi... |
| CVE-2016-7409 | — | — | 0.5% | Mar 3, 2017 | The dbclient and server in Dropbear SSH before 2016.74, when compiled with DEBUG_TRACE, allows local users to read proce... |
| CVE-2016-7408 | — | — | 4.0% | Mar 3, 2017 | The dbclient in Dropbear SSH before 2016.74 allows remote attackers to execute arbitrary code via a crafted (1) -m or (2... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now